👾 Канал про КБ и пентест
Наш Discord: https://discord.gg/Eg8aDS7Hn7
✉️ По сотрудничеству: @OxHaskar
🍩 Поддержать: https://www.donationalerts.com/r/xackapb
Post #7885
170
FS @hellohackingteam
Showing posts older than #7886 · Back to latest
Forwarded from Whitehat Lab

WordPress REST API Batch endpoint (/wp-json/batch/v1) SQL Injection
Unauthenticated RCE
id: wp2shell-batch-exposure
info:
name: WordPress wp2shell Exposure (CVE-2026-63030, CVE-2026-60137)
author: zephrsec
severity: critical
reference:
- https://slcyber.io/research-center/wp2shell-pre-authentication-rce-in-wordpress-core/
classification:
cve-id: CVE-2026-63030,CVE-2026-60137
tags: wordpress,cve2026,rce,sqli,wp2shell
http:
- raw:
- |
GET / HTTP/1.1
Host: {{Hostname}}
- |
POST /?rest_route=/batch/v1 HTTP/1.1
Host: {{Hostname}}
Content-Type: application/json
{}
req-condition: true
redirects: true
extractors:
- type: regex
name: wp_version
part: body_1
group: 1
regex:
- 'name="generator" content="WordPress ([0-9.]+)"'
matchers-condition: and
matchers:
- type: dsl
dsl:
- >-
compare_versions(wp_version, ">=6.9.0", "<6.9.5") ||
compare_versions(wp_version, ">=7.0.0", "<7.0.2") ||
compare_versions(wp_version, ">=6.8.0", "<6.8.6")
- type: word
part: body_2
words:
- '"rest_missing_callback_param"'
- '"rest_invalid_param"'
condition: or
Fsecurity | HH Новый ролик уже на канале 👾 Приятного просмотра 🍿 🔗Ссылка: https://m.youtube.com/watch?v=R0P9XsVu1tA
Forwarded from haxx

# установка
go install github.com/haxxm0nkey/credshound/cmd/credshound@latest
# запуск
credshound -ut
credshound .
This post (sticker, poll or similar) has no web preview. Open in Telegram
Forwarded from ESCalator
This post (sticker, poll or similar) has no web preview. Open in Telegram